Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 373 892

Количество 373 892

github логотип

GHSA-4m8x-p273-7mf3

больше 4 лет назад

ThinkSAAS before 3.38 contains a SQL injection vulnerability through app/topic/action/admin/topic.php via the title parameter, which allows remote attackers to execute arbitrary SQL commands.

EPSS: Низкий
github логотип

GHSA-4m8x-fc8r-wmqm

больше 4 лет назад

SQL injection vulnerability in the Reviews module in PHP-Nuke 6.0 to 7.3 allows remote attackers to execute arbitrary SQL commands via the order parameter.

EPSS: Низкий
github логотип

GHSA-4m8x-97cg-mq8w

больше 4 лет назад

Dell Latitude 7202 Rugged Tablet BIOS versions prior to A28 contain a UAF vulnerability in EFI_BOOT_SERVICES in system management mode. A local unauthenticated attacker may exploit this vulnerability by overwriting the EFI_BOOT_SERVICES structure to execute arbitrary code in system management mode.

EPSS: Низкий
github логотип

GHSA-4m8x-4m59-3q64

около 2 лет назад

GigaDevice GD32E103C8T6 devices have Incorrect Access Control.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-4m8x-4g54-h49v

около 3 лет назад

An issue in a hidden API in ZKTeco BioTime v8.5.5 allows unauthenticated attackers to arbitrarily reset the Administrator password via a crafted web request.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-4m8w-whg9-q7f6

больше 4 лет назад

A privilege escalation vulnerability exists in the Windows version of installation for Advantech R-SeeNet Advantech R-SeeNet 2.4.15 (30.07.2021). A specially-crafted file can be replaced in the system to escalate privileges to NT SYSTEM authority. An attacker can provide a malicious file to trigger this vulnerability.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-4m8w-p4p5-8mhw

2 дня назад

In handle_unmap_req of tipc_virtio_dev.c, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

CVSS3: 6.4
EPSS: Низкий
github логотип

GHSA-4m8v-pj3j-wc3q

больше 4 лет назад

Secure Elements Class 5 AVR client (aka C5 EVM) before 2.8.1 generates predictable CEIDs, which allows remote attackers to determine the CEID of a protected asset, which can be used in other attacks against AVR.

EPSS: Низкий
github логотип

GHSA-4m8v-5wv8-cxqr

больше 4 лет назад

There is an Assertion 'context_p->token.type == LEXER_LITERAL' failed at /jerry-core/parser/js/js-parser-expr.c in JerryScript 3.0.0.

EPSS: Низкий
github логотип

GHSA-4m8r-wpj3-88fh

больше 4 лет назад

Cross-site scripting (XSS) vulnerability in admin/index.php in Script PHP PicEngine 1.0 allows remote attackers to inject arbitrary web script or HTML via the l parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

EPSS: Низкий
github логотип

GHSA-4m8r-pf67-xg76

около 3 лет назад

Broadcom RAID Controller is vulnerable to Privilege escalation by taking advantage of the Session prints in the log file

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-4m8q-p6h8-x2wj

7 месяцев назад

The issue was addressed with improved memory handling. This issue is fixed in watchOS 26.3, tvOS 26.3, macOS Tahoe 26.3, visionOS 26.3, iOS 26.3 and iPadOS 26.3. An app may be able to cause unexpected system termination.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-4m8q-gch8-mc2x

больше 4 лет назад

An issue was discovered in UCMS 1.4.6. aaddpost.php has stored XSS via the sadmin/aindex.php minfo parameter in a sadmin_aaddpost action.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-4m8q-ffj9-gvq4

больше 4 лет назад

Microsoft Internet Explorer 5.01 and 6 does not properly handle uninitialized COM objects, which allows remote attackers to cause a denial of service (memory corruption) and possibly execute arbitrary code, as demonstrated by the Nth function in the DirectAnimation.DATuple ActiveX control, aka "COM Object Instantiation Memory Corruption Vulnerability."

EPSS: Средний
github логотип

GHSA-4m8q-c4r4-jf58

больше 2 лет назад

Insertion of Sensitive Information into Log File vulnerability in Very Good Plugins WP Fusion Lite.This issue affects WP Fusion Lite: from n/a through 3.42.10.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-4m8q-834f-23r3

больше 4 лет назад

Multiple unspecified vulnerabilities in Paisterist Simple HTTP Scanner (sHTTPScanner) before 0.2 have unknown impact and attack vectors.

EPSS: Низкий
github логотип

GHSA-4m8q-55qv-9pwp

2 месяца назад

Kimai: Teamlead authorization bypass in GET /api/timesheets allows reading other users' timesheet records without being teamlead of the target

EPSS: Низкий
github логотип

GHSA-4m8p-xfj4-439m

больше 3 лет назад

An issue in Zammad v5.4.0 allows attackers to bypass e-mail verification using an arbitrary address and manipulate the data of the generated user. Attackers are also able to gain unauthorized access to existing tickets.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-4m8p-9jfq-w3fj

6 месяцев назад

A weakness has been identified in OpenAkita up to 1.24.3. This impacts the function run of the file src/openakita/tools/shell.py of the component Chat API Endpoint. Executing a manipulation of the argument Message can lead to os command injection. The attack is restricted to local execution. The exploit has been made available to the public and could be used for attacks. The vendor was contacted early about this disclosure but did not respond in any way.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-4m8m-rj7f-37v4

больше 4 лет назад

This vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley View 10.15.0.75. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of FBX files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-15460.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-4m8x-p273-7mf3

ThinkSAAS before 3.38 contains a SQL injection vulnerability through app/topic/action/admin/topic.php via the title parameter, which allows remote attackers to execute arbitrary SQL commands.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-4m8x-fc8r-wmqm

SQL injection vulnerability in the Reviews module in PHP-Nuke 6.0 to 7.3 allows remote attackers to execute arbitrary SQL commands via the order parameter.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-4m8x-97cg-mq8w

Dell Latitude 7202 Rugged Tablet BIOS versions prior to A28 contain a UAF vulnerability in EFI_BOOT_SERVICES in system management mode. A local unauthenticated attacker may exploit this vulnerability by overwriting the EFI_BOOT_SERVICES structure to execute arbitrary code in system management mode.

0%
Низкий
больше 4 лет назад
github логотип
GHSA-4m8x-4m59-3q64

GigaDevice GD32E103C8T6 devices have Incorrect Access Control.

CVSS3: 9.8
0%
Низкий
около 2 лет назад
github логотип
GHSA-4m8x-4g54-h49v

An issue in a hidden API in ZKTeco BioTime v8.5.5 allows unauthenticated attackers to arbitrarily reset the Administrator password via a crafted web request.

CVSS3: 7.5
0%
Низкий
около 3 лет назад
github логотип
GHSA-4m8w-whg9-q7f6

A privilege escalation vulnerability exists in the Windows version of installation for Advantech R-SeeNet Advantech R-SeeNet 2.4.15 (30.07.2021). A specially-crafted file can be replaced in the system to escalate privileges to NT SYSTEM authority. An attacker can provide a malicious file to trigger this vulnerability.

CVSS3: 7.8
0%
Низкий
больше 4 лет назад
github логотип
GHSA-4m8w-p4p5-8mhw

In handle_unmap_req of tipc_virtio_dev.c, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

CVSS3: 6.4
0%
Низкий
2 дня назад
github логотип
GHSA-4m8v-pj3j-wc3q

Secure Elements Class 5 AVR client (aka C5 EVM) before 2.8.1 generates predictable CEIDs, which allows remote attackers to determine the CEID of a protected asset, which can be used in other attacks against AVR.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-4m8v-5wv8-cxqr

There is an Assertion 'context_p->token.type == LEXER_LITERAL' failed at /jerry-core/parser/js/js-parser-expr.c in JerryScript 3.0.0.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-4m8r-wpj3-88fh

Cross-site scripting (XSS) vulnerability in admin/index.php in Script PHP PicEngine 1.0 allows remote attackers to inject arbitrary web script or HTML via the l parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-4m8r-pf67-xg76

Broadcom RAID Controller is vulnerable to Privilege escalation by taking advantage of the Session prints in the log file

CVSS3: 9.8
1%
Низкий
около 3 лет назад
github логотип
GHSA-4m8q-p6h8-x2wj

The issue was addressed with improved memory handling. This issue is fixed in watchOS 26.3, tvOS 26.3, macOS Tahoe 26.3, visionOS 26.3, iOS 26.3 and iPadOS 26.3. An app may be able to cause unexpected system termination.

CVSS3: 5.5
0%
Низкий
7 месяцев назад
github логотип
GHSA-4m8q-gch8-mc2x

An issue was discovered in UCMS 1.4.6. aaddpost.php has stored XSS via the sadmin/aindex.php minfo parameter in a sadmin_aaddpost action.

CVSS3: 6.1
1%
Низкий
больше 4 лет назад
github логотип
GHSA-4m8q-ffj9-gvq4

Microsoft Internet Explorer 5.01 and 6 does not properly handle uninitialized COM objects, which allows remote attackers to cause a denial of service (memory corruption) and possibly execute arbitrary code, as demonstrated by the Nth function in the DirectAnimation.DATuple ActiveX control, aka "COM Object Instantiation Memory Corruption Vulnerability."

37%
Средний
больше 4 лет назад
github логотип
GHSA-4m8q-c4r4-jf58

Insertion of Sensitive Information into Log File vulnerability in Very Good Plugins WP Fusion Lite.This issue affects WP Fusion Lite: from n/a through 3.42.10.

CVSS3: 4.3
1%
Низкий
больше 2 лет назад
github логотип
GHSA-4m8q-834f-23r3

Multiple unspecified vulnerabilities in Paisterist Simple HTTP Scanner (sHTTPScanner) before 0.2 have unknown impact and attack vectors.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-4m8q-55qv-9pwp

Kimai: Teamlead authorization bypass in GET /api/timesheets allows reading other users' timesheet records without being teamlead of the target

0%
Низкий
2 месяца назад
github логотип
GHSA-4m8p-xfj4-439m

An issue in Zammad v5.4.0 allows attackers to bypass e-mail verification using an arbitrary address and manipulate the data of the generated user. Attackers are also able to gain unauthorized access to existing tickets.

CVSS3: 6.5
0%
Низкий
больше 3 лет назад
github логотип
GHSA-4m8p-9jfq-w3fj

A weakness has been identified in OpenAkita up to 1.24.3. This impacts the function run of the file src/openakita/tools/shell.py of the component Chat API Endpoint. Executing a manipulation of the argument Message can lead to os command injection. The attack is restricted to local execution. The exploit has been made available to the public and could be used for attacks. The vendor was contacted early about this disclosure but did not respond in any way.

CVSS3: 5.3
1%
Низкий
6 месяцев назад
github логотип
GHSA-4m8m-rj7f-37v4

This vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley View 10.15.0.75. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of FBX files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-15460.

2%
Низкий
больше 4 лет назад

Уязвимостей на страницу